Show filters
28 Total Results
Displaying 21-28 of 28
Sort by:
Attacker Value
Unknown

CVE-2017-11478

Disclosure Date: July 20, 2017 (last updated November 26, 2024)
The ReadOneDJVUImage function in coders/djvu.c in ImageMagick through 6.9.9-0 and 7.x through 7.0.6-1 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a malformed DJVU image.
0
Attacker Value
Unknown

CVE-2017-5508

Disclosure Date: March 24, 2017 (last updated November 26, 2024)
Heap-based buffer overflow in the PushQuantumPixel function in ImageMagick before 6.9.7-3 and 7.x before 7.0.4-3 allows remote attackers to cause a denial of service (application crash) via a crafted TIFF file.
0
Attacker Value
Unknown

CVE-2017-5507

Disclosure Date: March 24, 2017 (last updated November 26, 2024)
Memory leak in coders/mpc.c in ImageMagick before 6.9.7-4 and 7.x before 7.0.4-4 allows remote attackers to cause a denial of service (memory consumption) via vectors involving a pixel cache.
Attacker Value
Unknown

CVE-2015-8894

Disclosure Date: March 15, 2017 (last updated November 26, 2024)
Double free vulnerability in coders/tga.c in ImageMagick 7.0.0 and later allows remote attackers to cause a denial of service (application crash) via a crafted tga file.
0
Attacker Value
Unknown

CVE-2015-8895

Disclosure Date: March 15, 2017 (last updated November 26, 2024)
Integer overflow in coders/icon.c in ImageMagick 6.9.1-3 and later allows remote attackers to cause a denial of service (application crash) via a crafted length value, which triggers a buffer overflow.
0
Attacker Value
Unknown

CVE-2016-9298

Disclosure Date: January 27, 2017 (last updated November 25, 2024)
Heap overflow in the WaveletDenoiseImage function in MagickCore/fx.c in ImageMagick before 6.9.6-4 and 7.x before 7.0.3-6 allows remote attackers to cause a denial of service (crash) via a crafted image.
0
Attacker Value
Unknown

CVE-2016-6491

Disclosure Date: December 13, 2016 (last updated November 25, 2024)
Buffer overflow in the Get8BIMProperty function in MagickCore/property.c in ImageMagick before 6.9.5-4 and 7.x before 7.0.2-6 allows remote attackers to cause a denial of service (out-of-bounds read, memory leak, and crash) via a crafted image.
0
Attacker Value
Unknown

CVE-2016-3714

Disclosure Date: May 05, 2016 (last updated September 11, 2024)
The (1) EPHEMERAL, (2) HTTPS, (3) MVG, (4) MSL, (5) TEXT, (6) SHOW, (7) WIN, and (8) PLT coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to execute arbitrary code via shell metacharacters in a crafted image, aka "ImageTragick."